User-Controlled Data Encryption in Cloud Forms

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing data protection mechanisms in cloud computing environments lack user control over which data to encrypt and how to encrypt it, leading to inadequate protection of sensitive information from unauthorized access.

Innovation Solution

A user-controlled data protection system that allows users to specify which fields in a cloud application or service form to encrypt and choose the encryption method, using a browser plug-in and data protection appliance to manage encryption keys and ensure secure data transmission and storage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If existing data protection mechanisms are used, then data is protected to a certain extent, but users lack control over which data to encrypt and how to encrypt it

Engineering Contradiction:
Improveuser control over data encryptionVSAvoiddata protection effectiveness
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments data protection control by allowing users to selectively encrypt specific fields or data elements within forms rather than encrypting all data uniformly. The system divides data into protected and non-protected portions based on user selection, enabling granular control over encryption scope while maintaining operational simplicity.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements dynamic data protection where encryption requirements adapt based on user input and field characteristics. The system dynamically determines which fields require encryption based on user selection, data sensitivity, and contextual factors, allowing the protection mechanism to flexibly adjust to different scenarios while maintaining user control.

Inventive Principle:
Principle #15Dynamics

2Adaptability or versatility

If selective field encryption is implemented, then granular control over data protection is achieved, but system complexity increases

Engineering Contradiction:
Improveselective data protection capabilityVSAvoidencryption system complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent enables self-service data protection where users autonomously determine which fields require encryption through intuitive interfaces. The system automatically applies encryption based on user selections without requiring complex manual configuration, reducing the perceived complexity for users while maintaining high adaptability in data protection strategies.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent creates a universal encryption framework that handles multiple data types, formats, and sensitivity levels through a single integrated system. The encryption mechanism serves multiple functions including selective field encryption, key management, and compliance enforcement, reducing overall system complexity by consolidating diverse protection needs into one multi-functional platform.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9473467B2Customer controlled data privacy protection in public cloud
Publication Date: 2016.10.18 EMC IP HLDG CO LLC
  • US9473467B2 patent drawing
  • US9473467B2 patent drawing
  • US9473467B2 patent drawing

AI summary

Techniques to protect selected data in a cloud computing environment are disclosed. In various embodiments, an indication is received that a data value to be submitted, using a browser, to a remote node is to be protected. The data value is selectively encrypted. The encrypted data is provided value to the browser to be submitted to the remote node.